Usr6 Posted June 3, 2013 Report Posted June 3, 2013 *Listare procese:tasklistwmic process list full*Listare procese + asociere serviciitasklist /svc*Servicii:net startsc query *Startup:wmic startup list fullreg query HKLM\Software\Microsoft\Windows\CurrentVersion\Run*Conexiuni active:netstat -b*Firewall config:netsh firewall show config*Utilizatori:net user*Scheduled Tasks:schtasks*Loguri:eventvwr.mscpentru a tipari outputul unei comenzi intr-un fisier adaugati la sfarsitul comenzi " > output.txt"ex: "net user >output.txt" Quote
em Posted June 3, 2013 Report Posted June 3, 2013 Logurile din eventvwr sunt super si destul de detaliate. Am vazut ca unii virusi isi preiau i formatii de acolo ccla sa le dea mai departe. Quote